Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2011-0766

EPSS 3.37% · P87
Get alerts for future matching vulnerabilitiesLog in to subscribe

I. Basic Information for CVE-2011-0766

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Description
The random number generator in the Crypto application before 2.0.2.2, and SSH before 2.0.5, as used in the Erlang/OTP ssh library before R14B03, uses predictable seeds based on the current time, which makes it easier for remote attackers to guess DSA host and SSH session keys.
Source: NVD (National Vulnerability Database)
CVSS Information
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Type
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Title
Erlang/OTP SSH不安全随机数产生漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
Erlang/OTP ssh库R14B03之前版本中使用的Crypto application 2.0.2.2之前版本和SSH 2.0.5之前版本中存在不安全随机数产生漏洞。远程攻击者可以利用该漏洞获得对Digital Signature Algorithm(DSA)主键和SSH会话密钥的访问。
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Affected Products

VendorProductAffected VersionsCPESubscribe
-n/a n/a -

II. Public POCs for CVE-2011-0766

#POC DescriptionSource LinkShenlong Link
AI-Generated POCPremium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2011-0766

登录查看更多情报信息。

Same Patch Batch · n/a · 2011-05-31 · 28 CVEs total

CVE-2011-1512IBM Lotus Notes Autonomy KeyView .xls附件处理多个堆缓冲区溢出漏洞
CVE-2011-2215Walrus_Digit WalRack未明漏洞
CVE-2011-22147T Interactive Graphical SCADA System ODBC远程内存破坏漏洞
CVE-2011-1945OpenSSL ECC子系统加密问题漏洞
CVE-2011-1938PHP ext/sockets/sockets.c socket_connect函数栈缓冲区溢出漏洞
CVE-2011-1937Webmin跨站脚本攻击漏洞
CVE-2011-1925Wouter_Verhelst Network Block Device拒绝服务漏洞
CVE-2011-1922Nlnetlabs Unbound DNS解析器远程拒绝服务漏洞
CVE-2011-1910ISC BIND 9 Negative Caching RRSIG RRsets off-by-one错误漏洞
CVE-2011-1651Cisco IOS XR SPA接口处理器远程拒绝服务漏洞
CVE-2011-1649Cisco Content Delivery System Internet Streamer URL处理远程拒绝服务漏洞
CVE-2011-1647Cisco RVS4000和WRVS4400N Web管理界面信息泄露漏洞
CVE-2011-1646Cisco RVS4000和WRVS4400N Web管理界面远程命令注入漏洞
CVE-2011-1645Cisco RVS4000和WRVS4400N Web管理界面信息泄露漏洞
CVE-2011-0546Symantec Backup Exec非法访问漏洞
CVE-2011-1486Red Hat libvirt libvirtd拒绝服务漏洞
CVE-2011-1485Red Hat PolicyKit pkexec功能和polkitd守护进程竞争条件漏洞
CVE-2011-1329Walrus_Digit WalRack文件扩展处理任意文件上传漏洞
CVE-2011-1218IBM Lotus Notes Autonomy KeyView .zip附件处理缓冲区溢出漏洞
CVE-2011-1217IBM Lotus Notes Autonomy KeyView .prz附件处理缓冲区溢出漏洞

Showing top 20 of 28 CVEs. View all on vendor page → →

IV. Related Vulnerabilities

V. Comments for CVE-2011-0766

No comments yet


Leave a comment